Page MenuHomePhabricator

Revoke & delete all ssl certs not deployed
Closed, ResolvedPublic

Description

Someone needs to run "certbot revoke && certbot delete" for all old ssl certs not deployed.

Should stop the ssl renewal spam and is safer. We should probably renew the active certs at the same time.

Details

Security
Software security bug

Event Timeline

MacFan4000 claimed this task.

We don’t need to renew the active ones yet, as they don’t expire till November

MacFan4000 changed the visibility from "Custom Policy" to "Public (No Login Required)".Sep 27 2020, 6:48 PM
RhinosF1 removed MacFan4000 as the assignee of this task.
RhinosF1 changed the visibility from "Public (No Login Required)" to "acl*security (Project)".
RhinosF1 changed the edit policy from "All Users" to "acl*security (Project)".

We don’t need to renew the active ones yet, as they don’t expire till November

Read the other half of what I wrote. That was my last sentence and more of a when I get round to doing this I'll probably do the renewal if it allows at the same time.

MacFan4000 lowered the priority of this task from 80 to High.Sep 28 2020, 4:58 PM
MacFan4000 changed the visibility from "acl*security (Project)" to "Public (No Login Required)".
MacFan4000 changed the edit policy from "acl*security (Project)" to "All Users".

These should have been all done ye